Privacy Policy
Effective date: May 2026
This Privacy Policy describes how AnswerRank ("we", "us", "our") collects, uses, and shares information when you install our Shopify app.
1. What we collect
When you install AnswerRank on your Shopify store, we collect:
- Shop identity: shop domain, shop name, plan tier, currency.
- Product catalog: product titles, descriptions, types, vendors, tags, metafields, variants, images, options. Synced via Shopify's Admin API.
- Order metadata (aggregate only): order ID (Shopify GID), total amount, currency, item count, source name, referrer URL, landing URL with UTM parameters, line-item product IDs + quantities. We do NOT store customer names, emails, addresses, IP addresses, or payment details.
- Merchant-supplied settings: prompts you choose to track, brand aliases, scan schedule, notification preferences.
- App usage: rank-check results, audit scores, competitor citations.
We use Shopify's standard OAuth flow to authenticate. We never see or store your Shopify password.
2. What we don't collect
- Customer PII (names, emails, billing/shipping addresses, IPs)
- Payment card details (Shopify Billing handles this; we never touch it)
- Browsing data outside your store
3. Third-party services we send data to
To produce rank-tracking results, we send the prompt text (e.g., "best organic cotton t-shirts under $50") and your brand name to:
- OpenAI (ChatGPT API) — to query for current product rankings
- Google AI Studio (Gemini API) — same purpose
- Anthropic (Claude API, Haiku model) — used internally to extract brand citations from the answers the engines return
We do not send order data, customer data, or your product catalog to any third-party AI provider.
4. How we use your data
- Rank tracking: querying AI engines about your prompts and recording where you appear.
- Catalog auditing: scoring your products on AI-readiness dimensions.
- Competitor analysis: aggregating brand citations across your tracked prompts.
- Attribution: correlating orders with their referrer/UTM signals to estimate AI-driven revenue.
- Operating the app: dashboards, settings, billing.
We do not use your data to train AI models. We do not sell or rent your data to third parties.
5. Where your data lives
Stored on infrastructure in the United States (PostgreSQL on Supabase, app on Fly.io). Engine API queries are processed by OpenAI / Google / Anthropic in their respective default regions.
6. Data retention
- While active: indefinitely.
- After uninstall: retained for 30 days for re-install convenience, then permanently deleted via Shopify's
shop/redactGDPR webhook. - Cache rows: AI engine responses cached for 24 hours, brand-extraction results for 7 days.
7. Your rights (GDPR + CCPA)
Per Shopify's compliance webhooks, you can:
- Request your data (
customers/data_request): we store no customer data; the response is acknowledgement-only. - Request deletion of customer data (
customers/redact): same — no customer rows to delete. - Request deletion of shop data (
shop/redact): fires automatically when you uninstall. All shop data is hard-deleted.
For any other privacy-related request, email privacy@answerrank.com.
8. Sub-processors
| Vendor | Purpose | Data shared |
|---|---|---|
| Shopify | Hosting + Billing | OAuth tokens, billing status |
| Fly.io | App hosting | All data above |
| Supabase | PostgreSQL database | All data above |
| Upstash | Redis (job queue) | Job payloads (no PII) |
| OpenAI | ChatGPT API | Prompt text, brand name |
| Gemini API | Prompt text, brand name | |
| Anthropic | Claude API | Engine response text |
| Sentry (optional) | Error monitoring | Stack traces + shop domain |
9. Children
AnswerRank is a B2B app sold to Shopify merchants. We do not knowingly process data about children under 16.
10. Changes to this policy
We'll post any material changes on this page with an updated effective date. We'll notify merchants by email for material changes.
11. Contact
- Privacy questions: privacy@answerrank.com
- Support: support@answerrank.com